PyDFIR / pyDFIRRam
PyDFIRRam is a Python library leveraging Volatility 3 to simplify and enhance memory forensics. It streamlines the research, parsing, and analysis of memory dumps, allowing users to focus on data rather than commands.
β25Updated 5 months ago
Alternatives and similar repositories for pyDFIRRam:
Users that are interested in pyDFIRRam are comparing it to the libraries listed below
- Powershell Linterβ50Updated last month
- Ansible + Vagrant + Hyper-V + Vulnerable AD πβ90Updated 7 months ago
- DFIR project to collect and analyze events in Google Workspaceβ12Updated 11 months ago
- Memory mapping profiles for forensic analysis using volatility 2β47Updated 2 years ago
- Configuration Extractors for Malwareβ91Updated last month
- A ProcessMonitor visualization application written in rust.β179Updated last year
- My personal OT resource list, gather throughout research and internet adventure.β65Updated 2 weeks ago
- GeoWordlists is a tool to generate wordlists of passwords containing cities at a defined distance around the client city.β147Updated last month
- Python tool to check rootkits in Windows kernelβ193Updated last week
- Repository of Yara Rulesβ103Updated 3 weeks ago
- β105Updated 8 months ago
- Cheat sheet to detect and remove linux kernel rootkitβ51Updated 2 months ago
- APT hub, It help's research to collect information and data on the latest APT activities. It collects data on APT profiles, IOCs(1 yr), aβ¦β48Updated this week
- β133Updated last year
- orc2timeline extracts and analyzes artifacts contained in archives generated with DFIR-ORC.exe to create a timeline from themβ32Updated 3 months ago
- Collection of Volatility2 profiles, generated against Linux kernels.β35Updated last week
- DFIR ORC PARSER PROJECTβ25Updated 2 weeks ago
- A small program written in C that is designed to load 32/64-bit shellcode and allow for execution or debugging. Can also output PE files β¦β138Updated 7 months ago
- β127Updated last year
- Breizh CTF 2024 - Challengesβ14Updated 9 months ago
- linikatz is a tool to attack AD on UNIXβ144Updated last year
- Collection of codes focused on Linux rootkitsβ91Updated last week
- β55Updated 5 months ago
- An interactive shell to spoof some LOLBins command lineβ184Updated last year
- The LOLBins CTI-Driven (Living-Off-the-Land Binaries Cyber Threat Intelligence Driven) is a project that aims to help cyber defenders undβ¦β118Updated 11 months ago
- Rules shared by the community from 100 Days of YARA 2024β84Updated 2 months ago
- Find potential DLL Sideloads on your windows computerβ176Updated 2 months ago
- β20Updated last year
- A curated list of awesome LOLBins, GTFO projects, and similar 'Living Off the Land' security resources.β143Updated 4 months ago